720-891-1663

Third Party Risk Management in Light of Hezbollah and Twilio Attacks

I know I sound like a broken record, but as businesses start to improve their internal security, attackers focus on compromising businesses’ supply chains. In the case of the Hezbollah attack, the attackers must have, some how, known (a) that they were buying new walkie-talkies and pagers, (b) who they were buying them from, (c) […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News Update for Week Ending July 5, 2024

Speculative Execution Raises its Ugly Head Again Speculative execution is a type of attack that exploits bugs or features in Intel, AMD and Arm processors that try to squeeze that last ounce of juice out of that processor in your computer or phone. This family of attacks has been around for years. A famous one […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Federal Cyber Safety Board Says Microsoft Security Culture is Inadequate

The cyber safety review board is similar to the FAA’s National Transportation Safety Board, except that they are investigating Cybersecurity crashes (breaches) rather than airplane or container ship crashes. The board is new. It was created by Executive Order 14028 in 2021. They only convene when requested to by the Secretary of Homeland Security and, […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending January 5, 2024

You Haven’t Migrated to WiFi 6 Yet? It is Already Obsolete. Here is WiFi 7 WiFi 7 or, officially, IEEE 802.11be is faster and more spectrum efficient that previous WiFi versions. WiFi 7, they say, is 3 times faster than either WiFi 5 or 6, which makes it useful for things like gaming apps. Of […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Okta Attack Points Out Important Issues

One more time, Okta was attacked and customer data and systems compromised. I am going to leave the conversation about whether or not you should use Okta vs. a competitor to a separate conversation, but it seems that their security may be a bit lacking. In this most recent attack, the Okta support system was […]

Continue reading → [DISPLAY_ACURAX_ICONS]

How Much Does Failing to Install a Patch Cost? $550,000

The feds have upped the game and are going after companies that get breached that do not have effective cybersecurity programs. In this case, practice management software vendor Professional Business Systems, Inc. The company, who does business under the name Practicefirst Medical Management Solutions failed to install a firewall patch in January 2019. That failure […]

Continue reading → [DISPLAY_ACURAX_ICONS]